Buffer overflow in the MSGFunctionDemarshall function in winscard_svc.c in the PC/SC Smart Card daemon (aka PCSCD) in MUSCLE PCSC-Lite 1.5.4 and previous versions might allow local users to gain privileges via crafted SCARD_CONTROL message data, which is improperly demarshalled. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0407.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
muscle pcsc-lite 1.5.1 |
||
muscle pcsc-lite 1.5.0 |
||
muscle pcsc-lite 1.4.1 |
||
muscle pcsc-lite 1.4.0 |
||
muscle pcsc-lite 1.2.9 |
||
muscle pcsc-lite 1.2.0 |
||
muscle pcsc-lite 1.4.102 |
||
muscle pcsc-lite 1.4.101 |
||
muscle pcsc-lite 1.4.100 |
||
muscle pcsc-lite 1.3.3 |
||
muscle pcsc-lite 1.3.2 |
||
muscle pcsc-lite 1.1.2 |
||
muscle pcsc-lite 1.5.2 |
||
muscle pcsc-lite 1.4.3 |
||
muscle pcsc-lite 1.4.2 |
||
muscle pcsc-lite |
||
muscle pcsc-lite 1.4.99 |
||
muscle pcsc-lite 1.4.4 |
||
muscle pcsc-lite 1.3.1 |
||
muscle pcsc-lite 1.3.0 |